发明名称 SECURITY IN VIRTUALIZED COMPUTER PROGRAMS
摘要 In an embodiment, a method comprises implementing a memory event interface to a hypercall interface of a hypervisor or virtual machine operating system to intercept page faults for writing pages of memory that contain a computer program; receiving a page fault resulting from a guest domain attempting to write a page that is marked as not executable in a memory page permissions system; determining a first set of memory page permissions for the page that are maintained by the hypervisor or virtual machine operating system; determining a second set of memory page permissions that are maintained independent of the hypervisor or virtual machine operating system; determining a particular memory page permission for the page based on the first set and the second set; processing the page fault based on the particular memory page permission, including performing at least one security function associated with regulating access to the page.
申请公布号 WO2013052121(A1) 申请公布日期 2013.04.11
申请号 WO2012US00486 申请日期 2012.10.03
申请人 CISCO TECHNOLOGY, INC. 发明人 EPSTEIN, JOE
分类号 G06F9/455 主分类号 G06F9/455
代理机构 代理人
主权项
地址